
Post Like Manager Security & Risk Analysis
wordpress.org/plugins/pl-managerA smooth ajax-based like/dislike functionality for wordpress posts, pages, Custom post types..
Is Post Like Manager Safe to Use in 2026?
Generally Safe
Score 85/100Post Like Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pl-manager" plugin v1.0 exhibits a mixed security posture. On the positive side, it has a clean vulnerability history with no known CVEs and avoids dangerous functions, file operations, and external HTTP requests. The vast majority of its SQL queries utilize prepared statements, which is a strong defense against SQL injection. However, the static analysis reveals significant areas of concern, particularly regarding its attack surface. A substantial portion of its AJAX handlers (4 out of 6) lack authentication checks, creating potential entry points for unauthorized actions. Furthermore, only a single nonce check is present across the entire plugin, leaving most AJAX requests vulnerable to replay attacks. The low rate of properly escaped output (5%) is also a notable weakness, potentially exposing the site to cross-site scripting (XSS) vulnerabilities, especially when combined with the unprotected AJAX handlers. The lack of capability checks further exacerbates these risks, as even unauthenticated users might be able to trigger sensitive functionality.
Key Concerns
- Unprotected AJAX handlers
- Low output escaping rate
- Insufficient nonce checks
- No capability checks
Post Like Manager Security Vulnerabilities
Post Like Manager Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Post Like Manager Attack Surface
AJAX Handlers 6
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Post Like Manager Maintenance & Trust
Maintenance Signals
Community Trust
Post Like Manager Alternatives
Applause/Like/Upvote Button
applause
Add an applause/like/upvote button to your content.
Post Likerator
post-likerator
Simple like/unlike function for posts. No dislikes. Bring your own CSS.
Recommend
recommend
Recommend allows you to add a like user action to your content. Unlike social sharing or commenting, the like action is simple and intuitive.
ThumbsUp or Down Reactions
thumbsup-or-down-reactions
A lightweight and customizable thumbs up/down reaction plugin. Easily track likes and dislikes on any post, page, or custom post type.
Post Like Manager Developer Profile
2 plugins · 20 total installs
How We Detect Post Like Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pl-manager/css/style.css/wp-content/plugins/pl-manager/css/admin.css/wp-content/plugins/pl-manager/js/admin.js/wp-content/plugins/pl-manager/js/admin.jspl-manager/style.css?ver=pl-manager/admin.css?ver=pl-manager/admin.js?ver=HTML / DOM Fingerprints
plm-wrapplm-headerplm-bodyplm-left-contentplm-tabsresp-tabs-listresp-tabs-containerplm-form-sections+2 more<!-- Simple Post Like Management System --><!-- Load Plugin Text Domain --><!-- Add Setting Link In Plugin --><!-- Fires on plugin activation -->+6 moredata-tab="1"data-tab="2"MMPLM_PLUGIN_URLMMPLM_PLUGIN_NAMEMMPLM_PLUGIN_VERSIONMMPLM_AJAX_URL